Run defensive, explicitly authorized SaaS DAST and recon with scope controls. Use when asked to scan an owned local, staging, preview, or approved production URL, API endpoint, SaaS app, tenant boundary, public web surface, auth flow, exposed files, headers, TLS, or OWASP Top 10 behavior using tools such as ZAP, Nuclei, Katana, httpx, and Subfinder.
$npx -y skills add fernandobolzan/orquestrador-maestro --skill skill-saas-dast-reconInstalls into the current project.
Run `npx skills use "https://github.com/fernandobolzan/orquestrador-maestro" --skill "fernandobolzan/orquestrador-maestro/skill-saas-dast-recon"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/fernandobolzan/orquestrador-maestro" that are relevant to the current task. Run `npx skills add "https://github.com/fernandobolzan/orquestrador-maestro"` and select the relevant skills, then follow their instructions.